URLhaus Database

You are currently viewing the URLhaus database entry for https://forzzagym.com.mx/tuag/uctam which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2318804
URL: https://forzzagym.com.mx/tuag/uctam
URL Status:Offline
Host: forzzagym.com.mx
Date added:2022-09-28 17:54:11 UTC
Last online:2022-10-26 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 17:55:07 UTC to abuse{at}hostgator[dot]com)
Takedown time:27 days, 22 hours, 5 minutes Bad (down since 2022-10-26 16:00:15 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-24DRplwkDpkETXBA.zipunknown c3cd7948c1498c827fb9d3797c06312fee0fb98e8ab6477480d060b7d31b95e6n/a 
2022-10-16FelBmNiURlXxZqDVYQ.zipunknown 86298b6b1d1e2f88e8891cbbd2db924d44f358ece7529ed9b905f2b574079d6bn/a 
2022-10-09R4255921874.zipzip c0fd74422ddf6c46cc82b2c4464a61726f13c2e2e5d113ad2f88d17467cacb84Virustotal results 50.00% Quakbot
2022-10-06R507946437.zipzip 9f679b23a88b89ad762b72ac1439cc4a6b43a11566a44d20750f99be7d132cd8n/a Quakbot
2022-09-30Necessitatibusofficia3183578016.zipzip b9a1328f3107582e58d4fef064f2d3998b658ccc513f9e98a513f5606400d9ben/aQuakbot
2022-09-29sEIsIXQaEMjcNdpgr.zipunknown 15ec5504897aa5b4dce5d4cca6802f8989b1d6a7eb04c6100e6d3a548d2ecf17n/a 
2022-09-29lmYkfYVSUh.zipunknown d508bc41bd7bc7c68162e8603e1fc21e4f0348a3993c040f3af8f07a007ceb55n/a 
2022-09-28KtwwJKGBMjlE.zipunknown 27ffaf2d99fdf6d77f7208e2a355c24debd6148cc0c337479073405443d1a974n/a 
2022-09-28sfQuQ.zipunknown 7d337d9b0512fc6957656eec3a1cf51007a7aee7107071459a2c9bd4d1844e35n/a